𝕭𝖆𝖘𝖘𝖕𝖎𝖘𝖙𝖔𝖑 🎬

Unwanted Guests with David Brunsdon


Listen Later

Attackers are already living in your DNS, domains, and routers, would you even know they were there?

In this BSides Vancouver Island talk, threat researcher David Brunsdon (Infoblox) shows how misconfigured DNS, hijacked domains, vulnerable MikroTik routers, and compromised WordPress sites get chained together into large‑scale malware and fraud infrastructure. Instead of a single “big hack,” you’ll see how everyday admin mistakes quietly fuel botnets, phishing, and data theft.

This session is ideal for blue team defenders, threat hunters, incident responders, SOC analysts, and security‑minded infrastructure and DNS administrators who want to stop being “easy mode” for attackers.

Key topics include:

  • How attackers discover and weaponize misconfigured DNS and weak domain security
  • “Sitting ducks” domain hijacking and why it works so well at scale
  • How a tiny SPF record mistake lets attackers spoof your domain and abuse email
  • How botnets, traffic distribution systems, and compromised WordPress sites power modern malware campaigns
  • How threats like Strela Stealer hide C2 in plain sight using abused infrastructure
  • Practical steps defenders can take to detect, disrupt, and clean up exploited infrastructure
  • If you’re responsible for DNS, domains, email, or internet‑facing infrastructure, this talk will change how you look at your attack surface.

    This session was recorded live at BSides Vancouver Island 2025 in Victoria, BC at the Victoria Conference Centre.

    📣 BSides Vancouver Island 2026 Conference

    Join us on Friday, September 25, 2026
    Victoria Conference Centre, Victoria, BC

    🎤 Call for Presenters (CFP) — Deadline August 14, 2026

    https://www.bsidesvi.com/cfp

    🤝 Sponsorship Opportunities — Deadline August 14, 2026

    https://www.bsidesvi.com/cfs

    💬 Join the Community Slack

    https://communityinviter.com/apps/visrs/visrs

    Subscribe for more cybersecurity talks, threat intel deep dives, and infrastructure security content from BSides Vancouver Island.

    #CyberSecurity #InfoSec #ThreatIntelligence #DNS #DomainSecurity #EmailSecurity #Botnets #Malware #WordPressSecurity #BSides #BSidesVI #VancouverIsland #SecurityConference #InfrastructureSecurity

    ...more
    View all episodesView all episodes
    Download on the App Store

    𝕭𝖆𝖘𝖘𝖕𝖎𝖘𝖙𝖔𝖑 🎬By